Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 09:59:34.888 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-08-14 10:00:35.267 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50518 10 6452 1 2025-08-14 10:01:35.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-08-14 09:58:12.909 00:05:00.765 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 09:58:12.911 00:05:00.760 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:02:36.036 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40608 10 6452 1 2025-08-14 10:02:55.678 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:02:55.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:02:55.805 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:02:55.478 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:02:55.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:03:36.447 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55362 10 6452 1 2025-08-14 10:04:36.812 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56736 10 6452 1 2025-08-14 10:05:37.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-08-14 10:06:37.624 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-08-14 10:07:38.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41556 10 6452 1 2025-08-14 10:07:55.873 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:07:56.091 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:07:56.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:07:56.201 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:07:55.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:04:12.910 00:05:00.767 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:04:12.913 00:05:00.762 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:08:38.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33412 10 6452 1 2025-08-14 10:09:38.833 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-08-14 10:10:39.264 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47424 10 6452 1 2025-08-14 10:11:39.671 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6452 1 2025-08-14 10:12:40.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47736 10 6452 1 2025-08-14 10:12:56.489 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:12:56.471 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:12:56.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:12:56.484 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:12:56.405 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:13:40.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37058 10 6452 1 2025-08-14 10:10:12.912 00:05:00.766 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:10:12.915 00:05:00.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:14:40.907 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 12 6556 1 2025-08-14 10:15:41.315 00:00:10.523 TCP 1.101.0.1:3000 -> 23.104.0.1:50690 14 14280 1 2025-08-14 10:16:41.878 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-08-14 10:17:42.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57514 10 6452 1 2025-08-14 10:17:56.082 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:17:55.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:17:55.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:17:56.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:17:56.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:18:42.692 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60388 10 6452 1 2025-08-14 10:19:43.057 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45926 10 6452 1 2025-08-14 10:16:12.916 00:05:00.760 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:16:12.914 00:05:00.765 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:20:43.458 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-08-14 10:21:43.818 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-08-14 10:22:44.194 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44278 10 6452 1 2025-08-14 10:22:56.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:22:56.167 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:22:56.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:22:56.105 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:22:56.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:23:44.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55650 10 6452 1 2025-08-14 10:24:45.008 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60880 10 6452 1 2025-08-14 10:25:45.428 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42912 10 6452 1 2025-08-14 10:22:12.920 00:05:00.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:22:12.918 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:26:45.837 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-08-14 10:27:46.265 00:00:10.754 TCP 1.101.0.1:3000 -> 23.104.0.1:38190 10 6452 1 2025-08-14 10:27:56.355 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:27:56.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:27:55.897 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:27:56.165 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:27:56.248 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:28:47.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-08-14 10:29:47.469 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58194 10 6452 1 2025-08-14 10:30:47.832 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49340 10 6452 1 2025-08-14 10:31:48.227 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50150 10 6452 1 2025-08-14 10:28:12.922 00:05:00.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:28:12.920 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:32:56.352 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:32:56.558 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:32:56.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:32:56.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:32:48.588 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51792 10 6452 1 2025-08-14 10:32:56.269 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:33:48.998 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:47300 10 6452 1 2025-08-14 10:34:49.386 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36884 10 6452 1 2025-08-14 10:35:49.741 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-08-14 10:36:50.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47698 10 6452 1 2025-08-14 10:37:56.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:37:56.296 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:37:56.221 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:37:56.402 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:37:56.486 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:37:50.551 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56062 10 6452 1 2025-08-14 10:34:12.920 00:05:00.764 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:34:12.923 00:05:00.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:38:50.953 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55634 10 6452 1 2025-08-14 10:39:51.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55850 10 6452 1 2025-08-14 10:40:51.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-08-14 10:41:52.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56080 10 6452 1 2025-08-14 10:42:56.762 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:42:56.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:42:56.586 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:42:56.577 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:42:56.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:42:52.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40886 10 6452 1 2025-08-14 10:43:52.953 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52198 10 6452 1 2025-08-14 10:40:12.924 00:05:00.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:40:12.922 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:44:53.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51448 10 6452 1 2025-08-14 10:45:53.725 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41588 10 6452 1 2025-08-14 10:46:54.140 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-08-14 10:47:56.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:47:56.770 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:47:56.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:47:56.572 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:47:56.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:47:54.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52578 10 6452 1 2025-08-14 10:48:54.971 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-08-14 10:49:55.382 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-08-14 10:46:12.926 00:05:00.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:46:12.922 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:50:55.790 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:52736 12 10365 1 2025-08-14 10:51:56.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-08-14 10:52:56.678 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:52:56.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:52:56.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:52:56.575 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:52:56.658 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:52:56.672 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-08-14 10:53:57.103 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59176 10 6452 1 2025-08-14 10:54:57.500 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-08-14 10:55:57.908 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-08-14 10:52:12.924 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 10:52:12.926 00:05:00.759 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 10:56:58.272 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-08-14 10:57:56.916 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 10:57:56.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 10:57:56.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 10:57:56.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:57:56.835 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 10:57:58.675 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42710 10 6452 1 Summary: total flows: 139, total bytes: 422393, total packets: 1018, avg bps: 939, avg pps: 0, avg bpp: 414 Time window: 2025-08-14 09:58:12 - 2025-08-14 10:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0019s Wall: 0.0021s flows/second: 66927.8 Runtime: 0.0021s